googleprojectzero / ktrwLinks
An iOS kernel debugger based on a KTRR bypass for A11 iPhones; works with LLDB and IDA Pro.
☆680Updated 2 years ago
Alternatives and similar repositories for ktrw
Users that are interested in ktrw are comparing it to the libraries listed below
Sorting:
- a Ghidra framework for iOS kernelcache reverse engineering☆352Updated 2 years ago
- an iOS kernel function hooking framework for checkra1n'able devices☆567Updated 3 years ago
- An iOS kernel introspection tool.☆261Updated 5 years ago
- An IDA Toolkit for analyzing iOS kernelcaches.☆293Updated 4 years ago
- Extract Binaries from Apple's Dyld Shared Cache☆444Updated 4 months ago
- ☆376Updated 5 years ago
- IDAPython loader to help with AArch64 iBoot, iBEC, and SecureROM reverse engineering☆262Updated 3 years ago
- arm64 IOKit class dumper☆275Updated last month
- A collection of types & functions definitions useful for iOS/macOS binaries analysis.☆359Updated 2 weeks ago
- CVE-2018-4280: Mach port replacement vulnerability in launchd on iOS 11.2.6 leading to sandbox escape, privilege escalation, and codesign…☆255Updated 6 years ago
- iOS Kernel utilities☆243Updated 6 years ago
- Give me tfp0, I give you jelbrek☆262Updated 4 years ago
- iOS <13.5 sandbox escape/entitlement 0day☆334Updated 9 months ago
- iOS 11.1.2 (15B202) Jailbreak☆435Updated 4 years ago
- iOS Reverse Engineering☆1,149Updated 6 years ago
- Lib kernel r/w☆192Updated 3 years ago
- Write-up for alloc8 untethered bootrom exploit for iPhone 3GS☆381Updated 8 years ago
- Utility to decrypt App Store apps on jailbroken iOS 11.x☆460Updated 5 years ago
- Dylib injection for iOS 11.0 - 11.1.2 with LiberiOS and Electra jailbreaks☆632Updated 3 years ago
- Unstripped iOS Kernels☆218Updated 5 years ago
- kernel exploit for Apple iOS 13.X☆185Updated 4 years ago
- Cycript fork powered by Frida.☆385Updated 2 years ago
- ARM Assembly Reference Manual for iOS, iPadOS, and macOS.☆213Updated 4 years ago
- untethered+unsandboxed code execution in iOS 11☆185Updated 5 years ago
- Reversing the Apple sandbox☆234Updated last month
- ☆178Updated 4 years ago
- Decrypt iOS Apps and Mach-O binaries☆693Updated last year
- Fugu is the first open source jailbreak based on the checkm8 exploit☆671Updated 4 years ago
- Bidirectional XPC message interception and more. Powered by Frida☆402Updated 2 years ago
- Automate extraction from iOS firmware files (.ipsw)☆207Updated 3 months ago